Ordi infesté par W32/Blaster.worm

Résolu
austreberthe -  
 Utilisateur anonyme -
Bonjour à tous,

voici la bonne nouvelle du jour !
je suis perdue.. ):

je recois un message de "internet security", je ne peux plus rien ouvrir...
" Security Warning!
Malicious program has been detected.
Click here to protect your computer."

si vous pouvez m'aider, cela serait top

merci beaucoup d'avance
A voir également:

97 réponses

austreberthe
 
j ai effectivement un cureIT mais c est celui que l on avait fait hier..


j ai du faire une connerie... ):

j ai fait fait une recherche des derniers .log , rien...

je relance un scan

youpi !
0
Utilisateur anonyme
 
il avait detecté quoi ?
0
austreberthe
 
je sais plus trop...
):

y avait un trojan, genre SIJENE ou un truc du genre

j ai relancé un scan là
j espere ne pas me rater sur l exportation du journal ce coup ci...
0
Utilisateur anonyme
 
Sirefef ?
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
austreberthe
 
je crois oui

le nouveau scan est en cours (80%)
pour l'instant je touche du bois, aucune menace détectée...
0
austreberthe
 
le scan est bientot terminé

lorsque je vais exporter le journal il me propose de creer un fichier
dans /root c est ça ou il faut que je l exporte ailleurs ?

merci
0
austreberthe
 
hello !

mon scan est terminé !
y a pas de menaces détectées...
mais y a des "contains an error"

j attends tes instructions pour exporter le journal

merci beaucoup d'avance
0
Utilisateur anonyme
 
salut désolé week end chargé

tu me fais un topo ?
0
austreberthe
 
hello
pas de soucis
j espere qu il a été bon (:

j ai donc refait un scan avec dr.web live

j ai pris le rapport en photo car j ai pas l impression d avoir reussi à l exporter correctement, le lien de la photo :
http://cjoint.com/?BCmj6hNlmqb

le lien du rapport :
http://cjoint.com/?BCmj7YK14rK
(je ne sais pas ce que c est comme format)


sinon apres j ai refait un scan avec avast et toujours le même résultat :


il m'a détecté 4 menaces :

_ JS:ScriptIP-inf
dans:
C:\Documents and Settings\Perso\Local Settings\Application Data\Mozilla\Firefox\Profiles\co3obs1j.default\Cache\_CACHE_001_

_ Win32:spyware-gen
dans:
C:\Qoobox\Quarantine\C\Documents and Settings\NetworkService\Local Settings\Application Data\netewaff.dll.vir

_ Win32:DNSChanger-VJ
dans:
C:\WINDOWS\PCHEALTH\ErrorRep\UserDumps\ping.exe.20120306-123118-00.hdmp


_ Win32:Rloader-B
dans:
C:\WINDOWS\system32\c-7265107.nls


voili voilou

je suis vraiment dans le caca ?

l'ordi néanmoins tourne tres bien...

merci beaucoup de ta disponibilité en tout cas (-:
0
Utilisateur anonyme
 
supprime pre_scan , retelecharge-le , puis lance -le

au menu s'il papparait , choisis "Kill - Lancer le scan" puis heberge le rapport nouvellement fourni
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Developpement_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
0
austreberthe
 
c est parti !

"l'ordi néanmoins tourne tres bien... "
j ai parlé un peu vite
en 5 min j'ai perdu 2go d espace C et le message "espace disque faible est apparu"...
0
austreberthe
 
ci joint le rapport prescan :



¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Scan | 2.310 ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤ XP | Vista | 7 | 8 - 32/64 bits ¤¤¤¤¤

~ Mis à jour le 10/03/2012 | 00.30 par g3n-h@ckm@n
~ Informations Evolution : http://gen-hackman.forum-pro.fr/t64-historique-de-l-outil
~ Informations sur les switchs Pre_Script : http://gen-hackman.forum-pro.fr/t89-les-switchs
~ Remontées rogues : http://gen-hackman.forum-pro.fr/t92-remontees-rogues-divers#504
~ Feedback Pre_scan : http://gen-hackman.forum-pro.fr/t93-feedback-pre_scan#505

~ Utilisateur : Perso (Administrateurs) | SID = S-1-5-21-746137067-764733703-725345543-1003
~ Ordinateur : C562DINY8W536Y7

~ Système d'exploitation : Microsoft Windows XP (32 bits) Service Pack 3
~ Enregistré sous : .
~ Processeur : Intel(R) Pentium(R) 4 CPU 2.80GHz
~ Identification : x86 Family 15 Model 3 Stepping 4
Internet Explorer : 8.0.6001.18702
Mozilla Firefox : 10.0.2 (fr)
Google Chrome : 17.0.963.66
Pare-feu windows : Inactif
Windows Defender : Inactif

c:\ -> [Fixed] | [] | Total : 38150 Mo | Free : 1290 Mo -> NTFS

Scan : 10:51:48 | 12/03/2012


¤¤¤¤¤¤¤¤¤¤ | Windows Updates

Dernière(s) détection(s) : 2012-03-10 09:11:30
Dernier(s) téléchargement(s) : 2012-03-12 09:45:09
Dernière(s) installation(s) : 2012-03-12 09:39:09


¤¤¤¤¤¤¤¤¤¤ | Sessions

~ [HKLM | ProfileList] | S-1-5-21-746137067-764733703-725345543-1003 : ProfileImagePath -> %SystemDrive%\Documents and Settings\Perso
~ [HKLM | ProfileList] | S-1-5-21-746137067-764733703-725345543-1003 : RefCount -> 1
~ [HKLM | ProfileList] | S-1-5-21-746137067-764733703-725345543-1003 : State -> 256

¤¤¤¤¤¤¤¤¤¤ | Contrôle MD5

[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] -- [28/09/2001 13:00:00] -- (.© Microsoft Corporation. - Explorateur Windows.) -- [1013.5 Ko] -- C:\WINDOWS\explorer.exe -> (6.0.2900.5512)
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] -- [08/03/2012 19:32:10] -- (.© Microsoft Corporation. - Explorateur Windows.) -- [1013.5 Ko] -- C:\WINDOWS\ERDNT\cache\explorer.exe -> (6.0.2900.5512)
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] -- [20/03/2009 16:03:31] -- (.© Microsoft Corporation. - Explorateur Windows.) -- [1013.5 Ko] -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe -> (6.0.2900.5512)
[MD5.6EDCA12F58A4513637AF2DEBB1629BC8] -- [20/03/2009 16:31:08] -- (.© Microsoft Corporation. - Client Server Runtime Process.) -- [6 Ko] -- C:\WINDOWS\$NtServicePackUninstall$\csrss.exe -> (5.1.2600.2180)
[MD5.E0E8A531CFCE1C2E5D79F683282C10C3] -- [28/09/2001 13:00:00] -- (.© Microsoft Corporation. - Client Server Runtime Process.) -- [6 Ko] -- C:\WINDOWS\system32\csrss.exe -> (5.1.2600.5512)
[MD5.70A9BCEA4D3B3B4773F9A871F5FEEF57] -- [20/03/2009 16:30:34] -- (.© Microsoft Corporation. - Gestionnaire de session Windows NT.) -- [49.5 Ko] -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe -> (5.1.2600.2180)
[MD5.48E430297DA757F5CC2793CCFACAD5E7] -- [28/09/2001 13:00:00] -- (.© Microsoft Corporation. - Gestionnaire de session Windows NT.) -- [49.5 Ko] -- C:\WINDOWS\system32\smss.exe -> (5.1.2600.5512)
[MD5.84717891F0734C611721F56C60B5FBC3] -- [20/03/2009 16:30:33] -- (.© Microsoft Corporation. - Application d'ouverture de session Userinit.) -- [24.5 Ko] -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe -> (5.1.2600.2180)
[MD5.E74DDB12188C2FF57A78624DBF7332FC] -- [28/09/2001 13:00:00] -- (.© Microsoft Corporation. - Application d'ouverture de session Userinit.) -- [26 Ko] -- C:\WINDOWS\system32\userinit.exe -> (5.1.2600.5512)
[MD5.E74DDB12188C2FF57A78624DBF7332FC] -- [08/03/2012 19:32:10] -- (.© Microsoft Corporation. - Application d'ouverture de session Userinit.) -- [26 Ko] -- C:\WINDOWS\ERDNT\cache\userinit.exe -> (5.1.2600.5512)
[MD5.E74DDB12188C2FF57A78624DBF7332FC] -- [20/03/2009 16:03:54] -- (.© Microsoft Corporation. - Application d'ouverture de session Userinit.) -- [26 Ko] -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe -> (5.1.2600.5512)
[MD5.123EEA158F74D0F67A51DCDF065D1091] -- [20/03/2009 16:30:41] -- (.© Microsoft Corporation. - Application d'ouverture de session Windows NT.) -- [494.5 Ko] -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe -> (5.1.2600.2180)
[MD5.DD73D6B9F6B4CB630CF35B438B540174] -- [28/09/2001 13:00:00] -- (.© Microsoft Corporation. - Application d'ouverture de session Windows NT.) -- [500 Ko] -- C:\WINDOWS\system32\winlogon.exe -> (5.1.2600.5512)
[MD5.DD73D6B9F6B4CB630CF35B438B540174] -- [08/03/2012 19:32:09] -- (.© Microsoft Corporation. - Application d'ouverture de session Windows NT.) -- [500 Ko] -- C:\WINDOWS\ERDNT\cache\winlogon.exe -> (5.1.2600.5512)
[MD5.DD73D6B9F6B4CB630CF35B438B540174] -- [20/03/2009 16:03:58] -- (.© Microsoft Corporation. - Application d'ouverture de session Windows NT.) -- [500 Ko] -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe -> (5.1.2600.5512)
[MD5.CDD7140C0EAA754C527B983CCC9993CD] -- [20/03/2009 16:30:50] -- (.© Microsoft Corporation. - Exécuter une DLL en tant qu'application.) -- [33 Ko] -- C:\WINDOWS\$NtServicePackUninstall$\rundll32.exe -> (5.1.2600.2180)
[MD5.93AD0B78C7357A05F50E594EC7C22300] -- [28/09/2001 13:00:00] -- (.© Microsoft Corporation. - Exécuter une DLL en tant qu'application.) -- [33 Ko] -- C:\WINDOWS\system32\rundll32.exe -> (5.1.2600.5512)
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] -- [08/03/2012 19:32:09] -- (.© Microsoft Corporation. - IDE/ATAPI Port Driver.) -- [94.25 Ko] -- C:\WINDOWS\ERDNT\cache\atapi.sys -> (5.1.2600.5512)
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] -- [20/03/2009 16:04:02] -- (.© Microsoft Corporation. - IDE/ATAPI Port Driver.) -- [94.25 Ko] -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys -> (5.1.2600.5512)
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] -- [20/03/2009 14:42:45] -- (.© Microsoft Corporation. - IDE/ATAPI Port Driver.) -- [94.25 Ko] -- C:\WINDOWS\system32\drivers\atapi.sys -> (5.1.2600.5512)
[MD5.1F4260CC5B42272D71F79E570A27A4FE] -- [20/03/2009 16:03:42] -- (.© Microsoft Corporation. - SCSI CD-ROM Driver.) -- [61.5 Ko] -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys -> (5.1.2600.5512)
[MD5.7B53584D94E9D8716B2DE91D5F1CB42D] -- [08/02/2011 02:16:22] -- (.© Microsoft Corporation. - SCSI CD-ROM Driver.) -- [61.13 Ko] -- C:\WINDOWS\system32\dllcache\cdrom.sys -> (5.1.2600.3126)
[MD5.1F4260CC5B42272D71F79E570A27A4FE] -- [08/03/2012 13:38:50] -- (.© Microsoft Corporation. - SCSI CD-ROM Driver.) -- [61.5 Ko] -- C:\WINDOWS\system32\drivers\cdrom.sys -> (5.1.2600.5512)
[MD5.46DE1126684369BACE4849E4FC8C43CA] -- [20/03/2009 16:04:04] -- (.© Microsoft Corporation. - Pilote de cliché instantané du volume.) -- [52.13 Ko] -- C:\WINDOWS\ServicePackFiles\i386\volsnap.sys -> (5.1.2600.5512)
[MD5.46DE1126684369BACE4849E4FC8C43CA] -- [28/09/2001 13:00:00] -- (.© Microsoft Corporation. - Pilote de cliché instantané du volume.) -- [52.13 Ko] -- C:\WINDOWS\system32\drivers\volsnap.sys -> (5.1.2600.5512)

10:52:14

¤¤¤¤¤¤¤¤¤¤ | Processus en cours

Demarrage : Normal

664 | C:\WINDOWS\System32\smss.exe - SYSTEM - Normal - \SystemRoot\System32\smss.exe - 4
892 | C:\WINDOWS\system32\csrss.exe - SYSTEM - Normal - C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16 - 664
920 | C:\WINDOWS\system32\winlogon.exe - SYSTEM - High - winlogon.exe - 664
972 | C:\WINDOWS\system32\services.exe - SYSTEM - Normal - C:\WINDOWS\system32\services.exe - 920
984 | C:\WINDOWS\system32\lsass.exe - SYSTEM - Normal - C:\WINDOWS\system32\lsass.exe - 920
1152 | C:\WINDOWS\system32\svchost.exe - SYSTEM - Normal - C:\WINDOWS\system32\svchost.exe -k DcomLaunch - 972
1240 | C:\WINDOWS\system32\svchost.exe - - Normal - C:\WINDOWS\system32\svchost.exe -k rpcss - 972
1384 | C:\WINDOWS\System32\svchost.exe - SYSTEM - Normal - C:\WINDOWS\System32\svchost.exe -k netsvcs - 972
1520 | C:\WINDOWS\System32\svchost.exe - SERVICE RÉSEAU - Normal - C:\WINDOWS\System32\svchost.exe -k NetworkService - 972
1648 | C:\WINDOWS\system32\svchost.exe - SERVICE LOCAL - Normal - C:\WINDOWS\system32\svchost.exe -k LocalService - 972
1696 | C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe - SYSTEM - Normal - "C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe" -service - 972
1032 | C:\Program Files\AVAST Software\Avast\AvastSvc.exe - SYSTEM - Normal - "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" - 972
1412 | C:\WINDOWS\System32\svchost.exe - - Normal - C:\WINDOWS\System32\svchost.exe -k LocalService - 972
1488 | C:\Program Files\Bonjour\mDNSResponder.exe - SYSTEM - Normal - "C:\Program Files\Bonjour\mDNSResponder.exe" - 972
1548 | C:\WINDOWS\System32\svchost.exe - SYSTEM - Normal - C:\WINDOWS\System32\svchost.exe -k eapsvcs - 972
204 | C:\WINDOWS\System32\svchost.exe - SYSTEM - Normal - C:\WINDOWS\System32\svchost.exe -k imgsvc - 972
3432 | C:\WINDOWS\system32\WTablet\Wacom_TabletUser.exe - Perso - Normal - WTablet\Wacom_TabletUser.exe - 424
3468 | C:\WINDOWS\system32\Wacom_Tablet.exe - SYSTEM - High - Wacom_Tablet.exe au - 424
3808 | C:\Program Files\AVAST Software\Avast\avastUI.exe - Perso - Normal - "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui - 3396
828 | C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe - Perso - Normal - "C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe" - 3396
2260 | C:\WINDOWS\System32\svchost.exe - SYSTEM - Normal - C:\WINDOWS\System32\svchost.exe -k HTTPFilter - 972
160 | C:\Documents and Settings\Perso\Bureau\Pre_Scan.pif - Perso - High - "C:\Documents and Settings\Perso\Bureau\Pre_Scan.pif" - 3396
2612 | C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe - SYSTEM - Normal - "C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe" - 972
3136 | C:\Program Files\CheckPoint\ZAForceField\ForceField.exe - Perso - Normal - "C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden" - 2612
3368 | C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE - SYSTEM - Normal - "C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE" - 972
2092 | C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSvcM.exe - SYSTEM - Normal - WLIDSvcM.exe 3368 - 3368
3420 | C:\WINDOWS\system32\cmd.exe - Perso - Normal - C:\WINDOWS\system32\cmd.exe /c "%Homedrive%\Pre_Scan\Pv.exe -o"%i | %f - %u - %p - %l - %r">>%Homedrive%\Pre_Scan.txt" - 160
452 | C:\Pre_Scan\Pv.exe - Perso - Normal - C:\Pre_Scan\Pv.exe -o"%i | %f - %u - %p - %l - %r" - 3420

¤¤¤¤¤¤¤¤¤¤ | Démarrage principaux avant suppression

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LayoutM"=KLayMgr.exe
"IgfxTray"=C:\WINDOWS\System32\igfxtray.exe [20/03/2009|15:35:14]
"HotKeysCmds"=C:\WINDOWS\System32\hkcmd.exe [20/03/2009|15:35:13]
"Persistence"=C:\WINDOWS\System32\igfxpers.exe [20/03/2009|15:35:14]
"Google Quick Search Box"="C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe" /autorun
"AdobeCS4ServiceManager"="C:\Program Files\Fichiers communs\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [12/03/2010|13:08:54]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" -atboottime
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [20/02/2007|11:07:40]
"SunJavaUpdateSched"="C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe"
"Adobe ARM"="C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
"avast"="C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
"ISW"="C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden"
"ZoneAlarm"="C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe"
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\System32\CTFMON.EXE [28/09/2001|13:00:00]

[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]

[HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

[HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]

[HKU\S-1-5-19_Classes\Software\Microsoft\Windows\CurrentVersion\Run]
"MailNotifier"=C:\Program Files\Orange\MailNotifier\MailNotifier.exe [21/06/2010|10:56:08]

[HKU\S-1-5-19_Classes\Software\Microsoft\Windows\CurrentVersion\RunOnce]

[HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

[HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]

[HKU\S-1-5-20_Classes\Software\Microsoft\Windows\CurrentVersion\Run]
"MailNotifier"=C:\Program Files\Orange\MailNotifier\MailNotifier.exe [21/06/2010|10:56:08]

[HKU\S-1-5-20_Classes\Software\Microsoft\Windows\CurrentVersion\RunOnce]

[HKU\S-1-5-21-746137067-764733703-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [28/09/2001|13:00:00]

[HKU\S-1-5-21-746137067-764733703-725345543-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce]

[HKU\S-1-5-21-746137067-764733703-725345543-1003_Classes\Software\Microsoft\Windows\CurrentVersion\Run]

[HKU\S-1-5-21-746137067-764733703-725345543-1003_Classes\Software\Microsoft\Windows\CurrentVersion\RunOnce]

[HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\System32\CTFMON.EXE [28/09/2001|13:00:00]

[HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce]

[HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MailNotifier] | MailNotifier -> C:\Program Files\Orange\MailNotifier\MailNotifier.exe [21/06/2010|10:56:08]
[HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task] | qttask -> "C:\Program Files\QuickTime\qttask.exe" -atboottime

¤¤¤¤¤¤¤¤¤¤ | Autres Démarrages Silencieux

[HKLM\Software\Classes\*\shellex\ContextMenuHandlers\avast] | @ -> {472083B0-C522-11CF-8763-00608CC02F24}
[HKLM\Software\Classes\*\shellex\ContextMenuHandlers\DefragglerShellExtension] | @ -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590}
[HKLM\Software\Classes\*\shellex\ContextMenuHandlers\Offline Files] | @ -> {750fdf0e-2a26-11d1-a3ea-080036587f03}
[HKLM\Software\Classes\*\shellex\ContextMenuHandlers\Open With] | @ -> {09799AFB-AD67-11d1-ABCD-00C04FC30936}
[HKLM\Software\Classes\*\shellex\ContextMenuHandlers\Open With EncryptionMenu] | @ -> {A470F8CF-A1E8-4f65-8335-227475AA5C46}
[HKLM\Software\Classes\*\shellex\ContextMenuHandlers\RhinoShExt] | @ -> {C81DCBCA-8AE2-41FC-9C39-78B160393210}
[HKLM\Software\Classes\*\shellex\ContextMenuHandlers\ShellExtension] | @ ->
[HKLM\Software\Classes\*\shellex\ContextMenuHandlers\WinRAR] | @ -> {B41DB860-8EE4-11D2-9906-E49FADC173CA}
[HKLM\Software\Classes\*\shellex\ContextMenuHandlers\XXX Groove GFS Context Menu Handler XXX] | @ -> {6C467336-8281-4E60-8204-430CED96822D}
[HKLM\Software\Classes\*\shellex\ContextMenuHandlers\{a2a9545d-a0c2-42b4-9708-a0b2badd77c8}] | @ -> Épingle du menu Démarrer
[HKLM\Software\Classes\*\shellex\PropertySheetHandlers\CryptoSignMenu] | @ -> {7444C719-39BF-11D1-8CD9-00C04FC29D45}
[HKLM\Software\Classes\*\shellex\PropertySheetHandlers\{1F2E5C40-9550-11CE-99D2-00AA006E086C}] | @ ->
[HKLM\Software\Classes\*\shellex\PropertySheetHandlers\{3EA48300-8CF6-101B-84FB-666CCB9BCD32}] | @ ->
[HKLM\Software\Classes\*\shellex\PropertySheetHandlers\{883373C3-BF89-11D1-BE35-080036B11A03}] | @ -> Summary Properties Page
[HKLM\Software\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\00avast] | @ -> {472083B0-C522-11CF-8763-00608CC02F24}
[HKLM\Software\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\MBAMShlExt] | @ -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
[HKLM\Software\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\Send To] | @ -> {7BA4C740-9E81-11CF-99D3-00AA004AE837}
[HKLM\Software\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\XXX Groove GFS Context Menu Handler XXX] | @ -> {6C467336-8281-4E60-8204-430CED96822D}
[HKLM\Software\Classes\AllFilesystemObjects\shellex\PropertySheetHandlers\{596AB062-B4D2-4215-9F74-E9109B0A8153}] | @ ->
[HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\EncryptionMenu] | @ -> {A470F8CF-A1E8-4f65-8335-227475AA5C46}
[HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\Offline Files] | @ -> {750fdf0e-2a26-11d1-a3ea-080036587f03}
[HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\Sharing] | @ -> {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}
[HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\ShellExtension] | @ ->
[HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\WinRAR] | @ -> {B41DB860-8EE4-11D2-9906-E49FADC173CA}
[HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\XXX Groove GFS Context Menu Handler XXX] | @ -> {6C467336-8281-4E60-8204-430CED96822D}
[HKLM\Software\Classes\Directory\shellex\CopyHookHandlers\CDF] | @ -> {67EA19A0-CCEF-11d0-8024-00C04FD75D13}
[HKLM\Software\Classes\Directory\shellex\CopyHookHandlers\FileSystem] | @ -> {217FC9C0-3AEA-1069-A2DB-08002B30309D}
[HKLM\Software\Classes\Directory\shellex\CopyHookHandlers\MyDocuments] | @ -> {ECF03A33-103D-11d2-854D-006008059367}
[HKLM\Software\Classes\Directory\shellex\CopyHookHandlers\Sharing] | @ -> {40dd6e20-7c17-11ce-a804-00aa003ca9f6}
[HKLM\Software\Classes\Directory\shellex\DragDropHandlers\WinRAR] | @ -> {B41DB860-8EE4-11D2-9906-E49FADC173CA}
[HKLM\Software\Classes\Directory\shellex\PropertySheetHandlers\Sharing] | @ -> {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}
[HKLM\Software\Classes\Directory\shellex\PropertySheetHandlers\{1F2E5C40-9550-11CE-99D2-00AA006E086C}] | @ ->
[HKLM\Software\Classes\Directory\shellex\PropertySheetHandlers\{596AB062-B4D2-4215-9F74-E9109B0A8153}] | @ ->
[HKLM\Software\Classes\Directory\shellex\PropertySheetHandlers\{ECCDF543-45CC-11CE-B9BF-0080C87CDBA6}] | @ ->
[HKLM\Software\Classes\Directory\shellex\PropertySheetHandlers\{ef43ecfe-2ab9-4632-bf21-58909dd177f0}] | @ ->
[HKLM\Software\Classes\Directory\Background\shellex\ContextMenuHandlers\igfxcui] | @ -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4}
[HKLM\Software\Classes\Directory\Background\shellex\ContextMenuHandlers\New] | @ -> {D969A300-E7FF-11d0-A93B-00A0C90F2719}
[HKLM\Software\Classes\Directory\Background\shellex\ContextMenuHandlers\XXX Groove GFS Context Menu Handler XXX] | @ -> {6C467336-8281-4E60-8204-430CED96822D}
[HKLM\Software\Classes\Folder\shellex\ColumnHandlers\{0D2E74C4-3C34-11d2-A27E-00C04FC30871}] | @ ->
[HKLM\Software\Classes\Folder\shellex\ColumnHandlers\{24F14F01-7B1C-11d1-838f-0000F80461CF}] | @ ->
[HKLM\Software\Classes\Folder\shellex\ColumnHandlers\{24F14F02-7B1C-11d1-838f-0000F80461CF}] | @ ->
[HKLM\Software\Classes\Folder\shellex\ColumnHandlers\{66742402-F9B9-11D1-A202-0000F81FEDEE}] | @ ->
[HKLM\Software\Classes\Folder\shellex\ColumnHandlers\{F9DB5320-233E-11D1-9F84-707F02C10627}] | @ -> PDF Column Info
[HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\avast] | @ -> {472083B0-C522-11CF-8763-00608CC02F24}
[HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\DefragglerShellExtension] | @ -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590}
[HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\MBAMShlExt] | @ -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
[HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\WinRAR] | @ -> {B41DB860-8EE4-11D2-9906-E49FADC173CA}
[HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\XXX Groove GFS Context Menu Handler XXX] | @ -> {6C467336-8281-4E60-8204-430CED96822D}
[HKLM\Software\Classes\Folder\shellex\DragDropHandlers\WinRAR] | @ -> {B41DB860-8EE4-11D2-9906-E49FADC173CA}
[HKLM\Software\Classes\Folder\shellex\DragDropHandlers\{BD472F60-27FA-11cf-B8B4-444553540000}] | @ ->
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACDSee100AcquirePicturesOnArrival] | @ -> Acquire pictures
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACDSee100AcquireVideoFilesOnArrival] | @ -> Acquire videos
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACDSee100PlayVideoFilesOnArrival] | @ -> Browse videos
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ACDSee100ShowPicturesOnArrival] | @ -> Browse pictures
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\BridgeCS3ImportMediaOnArrival] | @ -> Download Images
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\BridgeCS4ImportMediaOnArrival] | @ -> Download images
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\BridgeCS4NonVolumeHandler] | @ -> Download images
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\BSplayerCDDA] | @ -> Play CD audio
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\BSplayerMusic] | @ -> Play Music
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\BSplayerVideo] | @ -> Play Video
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSCDBurningOnArrival] | @ -> @%SystemRoot%\system32\SHELL32.dll,-17169
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSOpenFolder] | @ -> @%SystemRoot%\system32\SHELL32.dll,-17154
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSPlayCDAudioOnArrival] | @ -> @wmploc.dll,-6503
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSPlayDVDMovieOnArrival] | @ -> @wmploc.dll,-6504
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSPlayMediaOnArrival] | @ -> @wmploc.dll,-1800
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSPlaySuperVideoCDMovieOnArrival] | @ -> @wmploc.dll,-6508
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSPlayVideoCDMovieOnArrival] | @ -> @wmploc.dll,-6507
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSPrintPicturesOnArrival] | @ -> @%SystemRoot%\system32\SHELL32.dll,-17158
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSPromptEachTime] | @ -> Prompt each time
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSPromptEachTimeNoContent] | @ -> Prompt each time - No Content
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSRipCDAudioOnArrival] | @ -> @wmploc.dll,-6506
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSSHAudioDevHandler] | @ -> @%SystemRoot%\system32\Audiodev.dll,-500
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSShowPicturesOnArrival] | @ -> @%SystemRoot%\system32\SHELL32.dll,-17156
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSTakeNoAction] | @ -> @%SystemRoot%\system32\SHELL32.dll,-17168
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSVideoCameraArrival] | @ -> @C:\Program Files\Movie Maker\wmmres.dll,-61826
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSWiaEventHandler] | @ -> @%systemroot%\System32\wiaacmgr.exe,-276
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSWMDMHandler] | @ -> @wmploc.dll,-29300
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSWMPBurnCDOnArrival] | @ -> @wmploc.dll,-6505
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\MSWPDShellNamespaceHandler] | @ -> @%SystemRoot%\System32\WPDShextRes.dll,-500
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\PCLEVideoCameraArrival] | @ -> Importation et édition Vidéo
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\Picasa2ImportPicturesOnArrival] | @ -> Copier des photos sur l'ordinateur pour les afficher
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\VLCPlayCDAudioOnArrival] | @ -> Lecture CD Audio
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\VLCPlayDVDAudioOnArrival] | @ -> Play audio DVD
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\VLCPlayDVDMovieOnArrival] | @ -> Lecture DVD
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\VLCPlayMusicFilesOnArrival] | @ -> Play audio files
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\VLCPlaySVCDMovieOnArrival] | @ -> Play SVCD movie
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\VLCPlayVCDMovieOnArrival] | @ -> Play VCD movie
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\VLCPlayVideoFilesOnArrival] | @ -> Play video files
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\WinampPlayMediaOnArrival] | @ -> Play
[HKLM\System\CurrentControlSet\Control\SafeBoot] | AlternateShell -> cmd.exe
[HKLM\System\CurrentControlSet\Control\SecurityProviders] | SecurityProviders -> msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll
[HKLM\System\CurrentControlSet\Control\Session Manager] | BootExecute -> autocheck autochk *

¤

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] | {AEB6717E-7E19-11d0-97EE-00C04FD91972} ->
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] | {B5A7F190-DDA6-4420-B3BA-52453494E6CD} -> Groove GFS Stub Execution Hook

¤


[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Adobe AIR]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Adobe Flash Player ActiveX]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Adobe Flash Player Plugin]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Adobe_2ac78060bc5856b0c1cf873bb919b58]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Adobe_a04a925a57548091300ada368235fc6]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Adobe_acce07fd2c8fe7f9e3f26243e626578]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Adobe_c3c7fe8b09d497ab2b3fd91c9353390]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\avast]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVG8Uninstall]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVS Image Converter_is1]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVS Update Manager_is1]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVS4YOU Software Navigator_is1]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\BSPlayerf]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\CCleaner]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Defraggler]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DivX Plus DirectShow Filters]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ENTERPRISE]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\HDMI]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\HP Photo Creations]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\HP PSC 1200 Series]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\hp psc 1200 series_Driver]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ie7]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ie8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2079403]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2115168]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2121546]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2141007]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2158563]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2160329]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2183461-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2229593]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2259922]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2279986]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2286198]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2296011]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2296199]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2345886]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2347290]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2360131-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2360937]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2378111_WM9]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2387149]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2393802]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2412687]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2416400-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2419632]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2423089]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2436673]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2440591]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2443105]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2443685]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2467659]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2476490]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2476687]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2478960]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2478971]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2479628]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2479943]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2481109]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2482017-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2483185]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2485376]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2485663]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2497640-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2503658]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2503665]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2506212]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2506223]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2507618]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2507938]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2508272]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2508429]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2509553]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2510531-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2511455]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2524375]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2530548-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2535512]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2536276]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2536276-v2]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2541763]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2544521-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2544893]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2544893-v2]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2555917]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2559049-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2562937]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2564958]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2566454]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2567053]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2567680]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2570222]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2570791]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2570947]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2584146]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2585542]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2586448-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2592799]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2598479]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2603381]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2607712]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2616676]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2618444-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2618451]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2619339]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2620712]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2624667]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2631813]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2633171]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2633952]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2639417]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2641690]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2646524]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2647516-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2660465]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB2661637]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB892130]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB898461]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB923561]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB929399]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB936782_WMP11]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB938127-v2-IE7]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB938464-v2]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB939683]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB941569]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB942288-v3]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB946648]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB950760]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB950762]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB950974]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB951066]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB951376-v2]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB951698]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB951748]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB951978]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB952004]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB952011]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB952287]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB952954]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB954154_WM11]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB954155_WM9]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB954459]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB954550-v5]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB954600]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB955069]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB955759]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB955839]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB956390-IE7]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB956572]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB956744]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB956802]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB956803]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB956841]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB956844]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB957097]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB958644]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB958687]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB958690]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB958869]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB959426]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB959772_WM11]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB960225]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB960715]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB960803]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB960859]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB961118]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB961260-IE7]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB961371]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB961373]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB961501]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB961503]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB963027-IE7]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB967715]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB968389]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB968537]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB968816_WM9]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB969059]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB969897-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB969898]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB969947]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB970238]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB970430]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB970653-v3]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB971029]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB971468]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB971486]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB971557]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB971633]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB971657]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB971737]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB971961-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB972260-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB972270]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB973346]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB973354]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB973507]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB973525]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB973540_WM9]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB973687]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB973815]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB973869]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB973904]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB974112]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB974318]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB974392]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB974455-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB974571]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB975025]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB975467]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB975558_WM8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB975560]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB975561]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB975562]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB975713]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB976002-v5]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB976098-v2]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB976325-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB976662-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB976749-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB977165-v2]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB977816]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB977914]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB978037]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB978207-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB978251]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB978262]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB978338]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB978542]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB978601]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB978695_WM9]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB978706]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB979306]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB979309]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB979482]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB979559]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB979683]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB979687]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB980182-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB980195]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB980218]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB980232]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB980436]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB981322]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB981332-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB981793]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB981852]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB981957]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB981997]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB982132]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB982214]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB982381-IE8]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB982665]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\KB982802]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\M2416447]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\M2572067]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\M2656353]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\M979906]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MailNotifier]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Malwarebytes' Anti-Malware_is1]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Microsoft .NET Framework 1.1 (1033)]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Microsoft .NET Framework 3.5 Language Pack SP1 - fra]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Microsoft .NET Framework 3.5 SP1]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Mozilla Firefox (3.5.16)]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Mozilla Firefox (3.6.24)]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Mozilla Firefox 10.0.2 (x86 fr)]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MSCompPackV1]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Picasa 3]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Quick Search Box]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SFR_Kit]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ShockwaveFlash]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Téléchargeur automatique de fichiers Internet 2010_is1]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\UFRaw_is1]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\uTorrent]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\VLC media player]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Wacom Tablet Driver]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WgaNotify]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Winamp]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Windows Media Format Runtime]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Windows Media Player]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Windows XP Service]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WinHTTrack Website Copier_is1]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WinLiveSuite_Wave3]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WinRAR archiver]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Wudf01000]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ZoneAlarm Free]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{053D04F6-C8CF-4804-8CC6-A643B0C61B8B}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{0BD83598-C2EF-3343-847B-7D2E84599128}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1362E602-9625-42D3-B57F-CDA9D26F9DA8}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1364BFAF-0E37-4B86-9E5D-03812D23160C}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1712CD4B-D6FC-381E-85F9-2F4EC2199F39}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{171E6C1E-B5FC-11DF-B115-005056C00008}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{18479273-C640-4FAE-B78C-CD256A937906}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{19EB9430-1105-3597-8EC0-E50D10BCF383}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1ADA9DB9-29D8-4179-AD6B-177339A4DC40}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1C8DFA71-4079-4F02-B8BB-47B12C1A565F}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1EFE09D3-6C77-4E6D-876F-76CB30D2056C}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{205C6BDD-7B73-42DE-8505-9A093F35A238}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{2318C2B1-4965-11d4-9B18-009027A5CD4F}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{23949E31-7C2E-46FF-916D-03ED927E9FF2}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{268789C4-53E6-4DDB-8F33-8D0F9E000BEA}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{26A24AE4-039D-4CA4-87B4-2F83216031FF}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{2934DCB0-F8EE-11E0-A4A5-B8AC6F97B88E}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{2D1AC484-E516-408C-8825-ACB1C356AC7A}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{2F3AB6ED-951C-4CE7-8AC9-8546FDCF1F5A}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{309E2514-29D4-405C-B3B1-14D7231BFA16}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{3121EC25-7956-42F9-9435-89617E8B1C29}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{342F5437-C87D-4BB5-89B9-B23E16C6A395}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{3A66FD42-50D2-3E9A-81B5-ECE3E5C3097A}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{3FA365DF-2D68-45ED-8F83-8C8A33E65143}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{4495DC0A-9CDF-4AFF-9850-078BF7053031}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{45338B07-A236-4270-9A77-EBB4115517B5}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{4582C7EB-93F5-408D-9F29-5A5BE1E76845}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{492CD592-87DD-31E9-8083-8665A0256163}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{494AD45E-E071-4819-8E15-E1041FBFF073}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{4CCC7F68-A437-4559-A840-F5E010934951}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{502506C0-2EFC-4590-A6B0-1A73BFD894BA}_is1]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{5B076A14-F478-3566-BE7A-985C3C629FA4}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{5B9E1A73-6A74-4DAF-AF1C-DDEBD79C942E}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{6DE721A5-5E89-4D74-994C-652BB3C0672E}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{6F7F5BB4-5D81-461B-9590-A96DA60611B8}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{724309E5-E712-426C-B94D-B6B42511C29F}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{7299052b-02a4-4627-81f2-1818da5d550d}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{72AD53CC-CCC0-3757-8480-9EE176866A7C}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{763CCDF9-1FDD-4EB3-989D-CB5E26C15A99}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{770657D0-A123-3C07-8E44-1C83EC895118}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{787D1A33-A97B-4245-87C0-7174609A540C}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79770F05-E3B8-4DAA-BEDB-9EBF29EAF527}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{7B63B2922B174135AFC0E1377DD81EC2}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{7BB045C3-D5E4-4620-B536-DC11AACD5942}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{7EFA9E45-BC04-4613-B88F-079B01C9F862}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{81719652-18E0-47B1-9A12-F82BF075D4DB}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{865CB546-829E-4C51-856A-1C042B264FE3}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86F7BB71-FE8F-3306-A325-F93EE06417B8}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{01D4CA59-7070-4420-9BCC-0EFA7C5D76BE}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B4CEEAE-AA88-490C-BCB2-AAC3421981A4}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1109D0B3-EFA3-4553-AAED-4C3E9AD130E8}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1142CCEC-ACA9-484B-BA90-C3A5CA1988C5}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{210B16C0-CEBD-4DE9-B474-04A7E8735E16}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{2964DDE1-4925-4DF1-AF2C-0A36B3442228}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{329050A9-EF80-40F9-B633-74508F54C1FF}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3A1CBF7D-4704-40BC-B31C-AA761884A3E4}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3A4CDE54-2403-483D-8D9A-15E3264410DF}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3DED0A62-44C8-4E00-A785-5212F297A9D9}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{536FB502-775F-4494-BACE-C02CC90B7A5B}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{567103D1-96CD-4B76-93B9-2681A187DEFF}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5729F1AE-5895-468F-9165-BAD161C9E982}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5A4E43D5-858F-49BD-BA72-8F30E1793060}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5A8732F0-C20F-4A9B-A2A9-66FE7A586C35}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5C497F0B-2061-4CC9-A61C-6B45B867354D}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5D930261-AA5B-48D1-931F-425C9D767490}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5DD98950-4D10-4B79-8BF6-59726705207D}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{643C12A2-AF9A-4712-B8BE-3B7650AFE00A}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{65EA4836-B5A3-4C1D-8883-0C35E471003A}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08}]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6FC5C4C1-D7AE-44C3-94B7-642
0
Utilisateur anonyme
 
je répète :

puis heberge le rapport nouvellement fourni
0
austreberthe
 
pardon

voici le lien :

http://pjjoint.malekal.com/files.php?id=20120312_e9i9h9g14q11
0
Utilisateur anonyme
 
relance pre_scan et choisis script , une page vierge va s'ouvrir.

selectionne tout le texte en gras ci-dessous, puis (clic droit/copier ou ctrl+c) :
___________________________________________________
Kill::

Registry::
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HP Software Update"=-
"QuickTime Task"=-
[-HKLM\Software\WinWSD ToolBar]
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Documents and Settings\Perso\Mes documents\Téléchargements\SweetImSetup.exe"=-
"\??\C:\WINDOWS\system32\winlogon.exe"=-

txt::
C:\WINDOWS\g_iclink313.ini

list::
C:\WINDOWS\pcidevice
C:\WINDOWS\UfdApp


list::
C:\ProgramData\Menu Start

file::
C:\WINDOWS\system32\c_7265107.nls

folder::
C:\a141b6b1ab6343bc7450
C:\f38047c12a75c3443cdd00f3


Mbr::

clean::

Reboot::

___________________________________________________

colle-le ensuite (clic droit/coller ou ctrl+V) dans la page vierge.

puis onglet fichier => enregistrer (pas enregistrer sous...) , puis ferme le texte

des fenetres noires risquent de clignoter , c'est normal , c'est le programme qui travaille

poste Pre_Script.txt qui apparaitra sur le bureau en fin de travail
0
austreberthe
 
EN COURS

par contre y a un nettoyage de disque qui s est lancé
je laisse ou j annule le nettoyage ?

merci
0
austreberthe
 
pardon pour mes questions idiotes, c'était surement normal...

voici le rapport :


¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Script | 2.306 ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

Microsoft Windows XP (32 bits) Service Pack 3

Switchs possibles :

processes:: | file:: | folder:: | Registry::
Driver:: | replace:: | DNS:: | Command::
txt:: | Host:: | NsLook:: | DLL:: | Unhide_Part::
list:: | IP:: | Kill:: | clean:: | Del_Part::
Reboot:: | MBR:: | Fixmbr:: | 40:: | Zip::
search:: | Tray::

Script : 11:59:49

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

Modification du registre effectuée

¤

Supprimé : C:\WINDOWS\system32\c_7265107.nls

¤

¤¤¤¤¤¤¤¤¤¤ | Edition de : C:\WINDOWS\g_iclink313.ini



¤


¤¤¤¤¤¤¤¤¤¤ | Nettoyage disque

Nettoyage du disque effectué

¤


Fin : 12:03:01

¤¤¤¤¤¤¤¤¤¤ ( EOF ) ¤¤¤¤¤¤¤¤¤¤



merci
0
Utilisateur anonyme
 
tu peux zipper ce fichier et me l'envoyer hébergé ? :

C:\WINDOWS\g_iclink313.ini
0
austreberthe
 
voici l adresse du fichier :

http://pjjoint.malekal.com/files.php?id=20120312_q10u12b15w6k7
0
Utilisateur anonyme
 
supprime-le

mets malwarebytes à jour et fais un scan complet
0